CVE-2007-5980
CVE-2007-5980
Cross-site scripting (XSS) vulnerability in home/rss.php in eggblog before 3.1.1 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF).
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://secunia.com/advisories/27668http://securityreason.com/securityalert/3361https://exchange.xforce.ibmcloud.com/vulnerabilities/38420http://sourceforge.net/project/shownotes.php?group_id=155425&release_id=553433http://www.h-labs.org/blog/2007/11/11/eggblog_v3_1_0_xss_issues.htmlhttp://www.securityfocus.com/archive/1/483569/100/0/threadedhttp://www.securityfocus.com/bid/26408